Apache Zeppelin CVE-2017-12619 Session Fixation Vulnerability

Apache Zeppelin is prone to a session-fixation vulnerability.

An attacker can hijack an arbitrary session and gain unauthorized access to the affected application.

Apache Zeppelin version prior to 0.7.3 are vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus